← back
CVE-2024-49112criticalCWE-190

Windows Lightweight Directory Access Protocol (LDAP) Remote Code Execution Vulnerability

70Vexday Risk Score

Keep watching. It has a public proof of concept.

ssvc Attendcvss 9.8epss 71%
from disclosure to weapon6 days
Published on NVDDec 10
1st PoC+6d
exploitation probability
71%top 1% of all CVEs
observed exploitation
nono source reports it
2 public exploit(s)
In short

A critical flaw in Windows LDAP allows attackers to execute malicious code remotely without authentication. This vulnerability affects a core Windows service used for directory and authentication services, putting systems at severe risk.

Technical detail

An integer overflow vulnerability (CWE-190) in Windows LDAP processing enables unauthenticated remote code execution through specially crafted LDAP requests. The vulnerability requires no credentials or user interaction, affecting the LDAP service directly accessible on the network.

Summary generated and translated by AI from the official description.
Windows Lightweight Directory Access Protocol (LDAP) Remote Code Execution Vulnerability
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
⚠ Public resources, to assess the exposure of systems you control or are authorized to test. Test only with authorization.